Skip to main content
Loading…
    CVE-2026-27959 — Koa is middleware for Node.js using ES2017 async functions. Prior to versions 3.1.2 and 2.16.4, Koa's `ctx.hostname` API performs naive parsing of the HTTP Host header, extracting everything before th — CVE Database · The Intelligence Room